vendor:
Safari
by:
Abysssec
7.5
CVSS
HIGH
WebKit Memory Corruption
119
CWE
Product Name: Safari
Affected Version From: Safari 5.0.5
Affected Version To: Safari 5.0.6
Patch Exists: YES
Related CWE: CVE-2011-0222
CPE: a:apple:safari
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP SP3
2011
Abysssec Public Advisory
WebKit, as used in Apple Safari before 5.0.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site a different vulnerability than other WebKit CVEs listed in APPLE-SA-2011-07-20-1.
Mitigation:
Update to the latest version of Safari, or use a different web browser.